#CERTUA warns cyber defenders of a third in a row #UAC0006 attack targeting Ukrainian financial institutions with #SmokeLoader #malware. Detect associated malicious activity with relevant #Sigma rules in the SOC Prime Platform.
https://socprime.com/blog/detecting-smokeloader-campaign-uac-0006-keep-targeting-ukrainian-financial-institutions-in-a-series-of-phishing-attacks/
#DFIR #SOC #threathunting